AIX7-00-002102 - On AIX, the SSH server must not permit root logins using remote access programs.

Information

Permitting direct root login reduces auditable information about who ran privileged commands on the system and also allows direct attack attempts on root's password.

Solution

Edit the "/etc/ssh/sshd_config" file to have the following line and save the change:
PermitRootLogin no

Restart SSH daemon:
# stopsrc -s sshd
# startsrc -s sshd

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_IBM_AIX_7-x_V3R3_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-215287r991589_rule, STIG-ID|AIX7-00-002102, STIG-Legacy|SV-101675, STIG-Legacy|V-91577, Vuln-ID|V-215287

Plugin: Unix

Control ID: a3ef6f17b13105032ad7044bf6d4c66b883f05ccf9ff2ced200125a6c00d31bd